Stranka stale nejde:(
ComboFix 12-09-15.02 - Speed 15.09.2012 23:04:40.1.1 - x86
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3071.2238 [GMT 2:00]
Spuštěný z: c:\users\Speed\Desktop\ComboFix.exe
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\system32\DEBUG.log
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-08-15 do 2012-09-15 )))))))))))))))))))))))))))))))
.
.
2012-09-15 21:15 . 2012-09-15 21:15 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-09-14 16:29 . 2012-09-14 16:29 -------- d-----w- c:\programdata\Malwarebytes
2012-09-14 16:29 . 2012-09-07 15:04 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-09-14 16:29 . 2012-09-14 16:29 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-09-14 15:58 . 2012-08-27 23:50 7022536 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7D99035D-A5CD-47CC-97ED-9A25C616CA53}\mpengine.dll
2012-09-12 17:17 . 2012-09-12 17:19 -------- d-----w- c:\program files\Google
2012-09-12 15:40 . 2012-09-12 15:40 -------- d-----w- c:\program files\CCleaner
2012-09-12 14:53 . 2012-08-22 17:16 712048 ----a-w- c:\windows\system32\drivers\ndis.sys
2012-09-12 14:53 . 2012-07-04 19:45 33280 ----a-w- c:\windows\system32\drivers\RNDISMP.sys
2012-09-12 14:53 . 2012-08-22 17:16 1292144 ----a-w- c:\windows\system32\drivers\tcpip.sys
2012-09-12 14:53 . 2012-08-22 17:16 240496 ----a-w- c:\windows\system32\drivers\netio.sys
2012-09-12 14:53 . 2012-08-22 17:16 187760 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2012-09-12 14:53 . 2012-08-02 16:57 490496 ----a-w- c:\windows\system32\d3d10level9.dll
2012-09-09 15:25 . 2012-09-09 15:25 -------- d-----w- c:\program files\NVIDIA Corporation
2012-09-09 15:21 . 2012-09-09 15:21 -------- d-----w- C:\TopCD
2012-09-09 15:19 . 2012-09-09 15:19 242240 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-09-09 15:19 . 2012-09-09 15:19 -------- d-----w- c:\program files\DAEMON Tools Pro
2012-09-09 15:18 . 2012-09-09 15:20 -------- d-----w- c:\programdata\DAEMON Tools Pro
2012-09-06 18:54 . 2012-09-06 18:54 -------- d-----w- c:\windows\system32\sda
2012-09-06 18:54 . 2010-01-07 07:05 182304 ----a-w- c:\windows\system32\drivers\RtsUStor.sys
2012-09-06 18:54 . 2010-01-07 07:05 7367200 ----a-w- c:\windows\system32\RTSUSTORicon.dll
2012-09-06 18:54 . 2010-01-07 07:05 313888 ----a-w- c:\windows\system32\RtsUStor.dll
2012-09-03 19:08 . 2012-09-03 19:08 -------- d-----w- c:\program files\TeamViewer
2012-09-02 16:46 . 2012-05-04 09:59 514560 ----a-w- c:\windows\system32\qdvd.dll
2012-09-02 16:46 . 2011-02-19 06:30 805376 ----a-w- c:\windows\system32\FntCache.dll
2012-09-02 16:46 . 2011-02-19 06:30 739840 ----a-w- c:\windows\system32\d2d1.dll
2012-09-01 17:57 . 2012-09-01 18:25 -------- d-----w- c:\program files\Miranda IM
2012-09-01 14:15 . 2011-04-28 03:15 60416 ----a-w- c:\windows\system32\drivers\BTHUSB.SYS
2012-09-01 14:15 . 2012-07-06 19:23 393728 ----a-w- c:\windows\system32\drivers\bthport.sys
2012-09-01 12:54 . 2011-03-25 02:58 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2012-09-01 12:54 . 2011-03-25 02:58 284672 ----a-w- c:\windows\system32\drivers\usbport.sys
2012-09-01 12:54 . 2011-03-25 02:58 75776 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2012-09-01 12:54 . 2011-03-25 02:57 43008 ----a-w- c:\windows\system32\drivers\usbehci.sys
2012-09-01 12:54 . 2011-03-25 02:57 20480 ----a-w- c:\windows\system32\drivers\usbohci.sys
2012-09-01 12:54 . 2011-03-25 02:57 24064 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2012-09-01 12:54 . 2011-03-25 02:57 5888 ----a-w- c:\windows\system32\drivers\usbd.sys
2012-09-01 12:31 . 2011-03-11 05:39 148864 ----a-w- c:\windows\system32\drivers\storport.sys
2012-09-01 12:31 . 2011-03-11 05:39 143744 ----a-w- c:\windows\system32\drivers\nvstor.sys
2012-09-01 12:31 . 2011-03-11 05:39 1211264 ----a-w- c:\windows\system32\drivers\ntfs.sys
2012-09-01 12:31 . 2011-03-11 05:38 332160 ----a-w- c:\windows\system32\drivers\iaStorV.sys
2012-09-01 12:31 . 2011-03-11 05:38 80256 ----a-w- c:\windows\system32\drivers\amdsata.sys
2012-09-01 12:31 . 2011-03-11 05:33 1699328 ----a-w- c:\windows\system32\esent.dll
2012-09-01 12:31 . 2011-03-11 05:31 74240 ----a-w- c:\windows\system32\fsutil.exe
2012-09-01 12:31 . 2011-03-11 05:39 117120 ----a-w- c:\windows\system32\drivers\nvraid.sys
2012-09-01 12:31 . 2011-03-11 05:38 22400 ----a-w- c:\windows\system32\drivers\amdxata.sys
2012-09-01 12:28 . 2012-09-01 12:28 -------- d-----w- c:\program files\Microsoft.NET
2012-09-01 12:27 . 2011-02-03 05:54 219008 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2012-09-01 12:18 . 2012-09-01 12:18 -------- d-----w- c:\windows\system32\Wat
2012-08-31 21:34 . 2012-03-01 05:46 19824 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-08-31 21:34 . 2012-03-01 05:37 172544 ----a-w- c:\windows\system32\wintrust.dll
2012-08-31 21:34 . 2012-03-01 05:33 159232 ----a-w- c:\windows\system32\imagehlp.dll
2012-08-31 21:34 . 2012-03-01 05:29 5120 ----a-w- c:\windows\system32\wmi.dll
2012-08-31 21:32 . 2010-02-11 07:10 293376 ----a-w- c:\windows\system32\browserchoice.exe
2012-08-31 18:02 . 2012-05-05 07:46 400896 ----a-w- c:\windows\system32\srcore.dll
2012-08-31 18:02 . 2011-08-17 04:24 465408 ----a-w- c:\windows\system32\psisdecd.dll
2012-08-31 18:02 . 2011-08-17 04:19 75776 ----a-w- c:\windows\system32\psisrndr.ax
2012-08-31 18:02 . 2011-02-19 06:30 34304 ----a-w- c:\windows\system32\atmlib.dll
2012-08-31 18:02 . 2011-02-19 04:34 294912 ----a-w- c:\windows\system32\atmfd.dll
2012-08-31 18:02 . 2010-09-30 06:47 70656 ----a-w- c:\windows\system32\fontsub.dll
2012-08-31 18:02 . 2011-05-24 10:44 293376 ----a-w- c:\windows\system32\umpnpmgr.dll
2012-08-31 18:00 . 2012-04-07 11:26 2342400 ----a-w- c:\windows\system32\msi.dll
2012-08-31 17:48 . 2012-08-31 17:48 -------- d-----w- c:\program files\EasyPHP-12.1
2012-08-31 17:41 . 2012-05-01 04:44 164352 ----a-w- c:\windows\system32\profsvc.dll
2012-08-31 17:40 . 2012-02-11 05:43 492032 ----a-w- c:\windows\system32\win32spl.dll
2012-08-31 17:00 . 2011-10-01 04:37 708608 ----a-w- c:\program files\Common Files\System\wab32.dll
2012-08-31 17:00 . 2011-03-03 05:38 132608 ----a-w- c:\windows\system32\dnsrslvr.dll
2012-08-31 17:00 . 2011-03-03 05:36 28672 ----a-w- c:\windows\system32\dnscacheugc.exe
2012-08-31 16:59 . 2011-12-30 05:27 478720 ----a-w- c:\windows\system32\timedate.cpl
2012-08-31 16:59 . 2012-06-02 04:45 134000 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2012-08-31 16:59 . 2012-06-02 04:40 369336 ----a-w- c:\windows\system32\drivers\cng.sys
2012-08-31 16:59 . 2012-06-02 04:40 225280 ----a-w- c:\windows\system32\schannel.dll
2012-08-31 16:59 . 2012-06-02 04:39 219136 ----a-w- c:\windows\system32\ncrypt.dll
2012-08-31 16:59 . 2012-06-02 04:45 67440 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2012-08-31 16:52 . 2012-05-31 10:25 237072 ------w- c:\windows\system32\MpSigStub.exe
2012-08-31 16:51 . 2012-03-03 05:31 1077248 ----a-w- c:\windows\system32\DWrite.dll
2012-08-31 16:51 . 2011-04-09 05:56 123904 ----a-w- c:\windows\system32\poqexec.exe
2012-08-31 16:51 . 2011-04-22 19:14 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2012-08-31 16:51 . 2012-04-24 04:36 140288 ----a-w- c:\windows\system32\cryptsvc.dll
2012-08-31 16:51 . 2012-04-24 04:36 1158656 ----a-w- c:\windows\system32\crypt32.dll
2012-08-31 16:51 . 2012-04-24 04:36 103936 ----a-w- c:\windows\system32\cryptnet.dll
2012-08-31 16:50 . 2012-08-31 16:50 -------- d-----w- c:\windows\system32\RTCOM
2012-08-31 16:47 . 2011-12-13 09:01 1698408 ----a-w- c:\windows\RtlExUpd.dll
2012-08-31 16:46 . 2012-08-31 16:46 -------- d-----w- c:\program files\Common Files\InstallShield
2012-08-31 16:45 . 2011-02-23 04:47 69632 ----a-w- c:\windows\system32\drivers\bowser.sys
2012-08-31 16:45 . 2012-08-31 16:45 73416 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-08-31 16:45 . 2012-08-31 16:45 696520 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-08-31 16:45 . 2012-08-31 16:45 -------- d-----w- c:\windows\system32\Macromed
2012-08-31 16:43 . 2012-03-17 07:27 56176 ----a-w- c:\windows\system32\drivers\partmgr.sys
2012-08-31 16:43 . 2012-01-04 08:58 442880 ----a-w- c:\windows\system32\ntshrui.dll
2012-08-31 16:42 . 2011-03-11 05:33 1164288 ----a-w- c:\windows\system32\mfc42u.dll
2012-08-31 16:42 . 2011-03-11 05:33 1137664 ----a-w- c:\windows\system32\mfc42.dll
2012-08-31 16:26 . 2012-02-17 05:34 826880 ----a-w- c:\windows\system32\rdpcore.dll
2012-08-31 16:26 . 2012-02-17 04:13 24576 ----a-w- c:\windows\system32\drivers\tdtcp.sys
2012-08-31 16:24 . 2012-08-31 16:24 -------- d-----w- c:\program files\AMD APP
2012-08-31 16:24 . 2012-08-31 16:24 -------- d-----w- c:\program files\Common Files\ATI Technologies
2012-08-31 16:22 . 2012-09-15 20:22 -------- d-sh--w- c:\windows\Installer
2012-08-31 16:20 . 2012-08-31 16:20 -------- d-----w- c:\program files\uTorrent
2012-08-31 16:19 . 2012-09-10 12:18 -------- d-----w- c:\program files\Mozilla Maintenance Service
2012-08-30 22:40 . 2012-08-31 17:45 -------- d-----w- c:\program files\PSPad editor
2012-08-30 21:12 . 2012-09-12 15:41 -------- d-----w- c:\windows\Panther
2012-08-30 20:52 . 2012-08-30 20:52 -------- d-----w- c:\program files\VideoLAN
2012-08-30 20:42 . 2012-09-06 18:54 -------- d--h--w- c:\program files\InstallShield Installation Information
2012-08-30 20:42 . 2012-08-31 16:51 -------- d--h--w- c:\program files\Temp
2012-08-30 20:42 . 2012-08-30 20:42 -------- d-----w- c:\programdata\ATI
2012-08-30 20:41 . 2012-08-30 20:42 -------- d-----w- c:\program files\ATI Technologies
2012-08-30 20:41 . 2012-08-30 20:41 -------- d-----w- c:\program files\ATI
2012-08-30 20:24 . 2012-06-02 22:19 53784 ----a-w- c:\windows\system32\wuauclt.exe
2012-08-30 20:24 . 2012-06-02 22:19 45080 ----a-w- c:\windows\system32\wups2.dll
2012-08-30 20:24 . 2012-06-02 22:19 1933848 ----a-w- c:\windows\system32\wuaueng.dll
2012-08-30 20:24 . 2012-06-02 22:12 2422272 ----a-w- c:\windows\system32\wucltux.dll
2012-08-30 20:24 . 2012-06-02 22:19 35864 ----a-w- c:\windows\system32\wups.dll
2012-08-30 20:24 . 2012-06-02 22:19 577048 ----a-w- c:\windows\system32\wuapi.dll
2012-08-30 20:24 . 2012-06-02 22:12 88576 ----a-w- c:\windows\system32\wudriver.dll
2012-08-30 20:17 . 2012-08-30 20:17 0 ----a-w- c:\windows\ativpsrm.bin
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-09-09 14:32 . 2012-09-09 14:32 266720 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"="c:\program files\uTorrent\uTorrent.exe" [2012-08-31 895376]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
"DAEMON Tools Pro Agent"="c:\program files\DAEMON Tools Pro\DTAgent.exe" [2012-04-26 3111744]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-11-09 343168]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2011-12-13 11487848]
.
c:\users\Speed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Facebook Messenger.lnk - c:\users\Speed\AppData\Local\Facebook\Messenger\2.1.4631.0\FacebookMessenger.exe [2012-9-5 247728]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
R2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [x]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]
R3 EagleXNt;EagleXNt;c:\windows\system32\drivers\EagleXNt.sys [x]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [x]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [x]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [x]
S2 TeamViewer7;TeamViewer 7;c:\program files\TeamViewer\Version7\TeamViewer_Service.exe [x]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista;c:\windows\system32\DRIVERS\netw5v32.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - 29924618
*Deregistered* - 29924618
.
Obsah adresáře 'Naplánované úlohy'
.
2012-09-15 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-31 16:45]
.
2012-09-15 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2902474901-1039443893-3287944609-1001Core.job
- c:\users\Speed\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-31 20:48]
.
2012-09-15 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2902474901-1039443893-3287944609-1001UA.job
- c:\users\Speed\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-31 20:48]
.
2012-09-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-09-12 17:17]
.
2012-09-15 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-09-12 17:17]
.
.
------- Doplňkový sken -------
.
TCP: DhcpNameServer = 192.168.0.254
TCP: Interfaces\{B21C1973-001B-4FEA-9426-92EEA7937C33}: NameServer = 8.8.8.8,8.8.4.4
FF - ProfilePath - c:\users\Speed\AppData\Roaming\Mozilla\Firefox\Profiles\6jfm6a5z.default\
FF - prefs.js: browser.startup.homepage -
hxxp://www.seznam.cz/.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2012-09-15 23:18:56
ComboFix-quarantined-files.txt 2012-09-15 21:18
.
Před spuštěním: Volných bajtů: 30 596 734 976
Po spuštění: Volných bajtů: 30 485 110 784
.
- - End Of File - - F7B0010CAF8F23D07C9A2AB681277ABF
22:55:15.0622 1104 TDSS rootkit removing tool 2.8.8.0 Aug 24 2012 13:27:48
22:55:15.0792 1104 ============================================================
22:55:15.0792 1104 Current date / time: 2012/09/15 22:55:15.0792
22:55:15.0792 1104 SystemInfo:
22:55:15.0792 1104
22:55:15.0792 1104 OS Version: 6.1.7601 ServicePack: 1.0
22:55:15.0792 1104 Product type: Workstation
22:55:15.0792 1104 ComputerName: SPEED-PC
22:55:15.0792 1104 UserName: Speed
22:55:15.0792 1104 Windows directory: C:\Windows
22:55:15.0792 1104 System windows directory: C:\Windows
22:55:15.0792 1104 Processor architecture: Intel x86
22:55:15.0792 1104 Number of processors: 1
22:55:15.0792 1104 Page size: 0x1000
22:55:15.0792 1104 Boot type: Normal boot
22:55:15.0792 1104 ============================================================
22:55:17.0302 1104 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
22:55:17.0302 1104 ============================================================
22:55:17.0302 1104 \Device\Harddisk0\DR0:
22:55:17.0302 1104 MBR partitions:
22:55:17.0302 1104 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
22:55:17.0302 1104 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x6176000
22:55:17.0302 1104 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x61A8800, BlocksNum 0x1D4C0000
22:55:17.0302 1104 \Device\Harddisk0\DR0\Partition4: MBR, Type 0x7, StartLBA 0x23668800, BlocksNum 0x1DC5800
22:55:17.0302 1104 ============================================================
22:55:17.0322 1104 C: <-> \Device\Harddisk0\DR0\Partition2
22:55:17.0372 1104 D: <-> \Device\Harddisk0\DR0\Partition3
22:55:17.0432 1104 E: <-> \Device\Harddisk0\DR0\Partition4
22:55:17.0432 1104 ============================================================
22:55:17.0432 1104 Initialize success
22:55:17.0432 1104 ============================================================
22:55:22.0592 3380 ============================================================
22:55:22.0592 3380 Scan started
22:55:22.0592 3380 Mode: Manual;
22:55:22.0592 3380 ============================================================
22:55:23.0572 3380 ================ Scan system memory ========================
22:55:23.0572 3380 System memory - ok